• Stars
    star
    931
  • Rank 49,076 (Top 1.0 %)
  • Language
    HTML
  • Created almost 5 years ago
  • Updated almost 2 years ago

Reviews

There are no reviews yet. Be the first to send feedback to the community and the maintainers!

Repository Details

Everything for pentest. | 用于渗透测试的 payload 和 bypass 字典.

English | 简体中文



Manual

  • Dic
    • Auth : Certified dictionaries
      • Accounts and passwords.
    • Network : network (computing)
      • Excluded private IP segments, local IP segments, list of dns servers.
    • Port : Port Dictionary
      • Following the idea of port penetration, the service blast points carried by different ports are used as dictionary content.
    • Regular : Dictionary of rules
      • Various rules, arrangement of dictionaries.
    • Web : Web Dictionaries
      • As the name implies, burstable points that appear during web penetration serve as dictionary content.
  • Payload
    • Burp
    • CORS
    • email
    • Format
    • HPP
    • LFI
    • OOB
    • SQL-Inj
    • SSI
    • XSS
    • XXE
  • VPS(Not maintaining this section, please use the f8x tool)
    • Debian~ - Debian system infrastructure configuration.
    • Kali - Kali system infrastructure configuration.
    • RedHat~ - RedHat system infrastructure configuration.
  • Cheatsheet : Directly copy a pair during penetration testing for reference, information logging, teamwork, reporting, etc.

Disclaimer&License

  • This work is licensed under a CC BY-SA 4.0.
    • Share — copy and redistribute the material in any medium or format
    • Adapt — remix, transform, and build upon the material for any purpose, even commercially.
    • Attribution — You must give appropriate credit, provide a link to the license, and indicate if changes were made. You may do so in any reasonable manner, but not in any way that suggests the licensor endorses you or your use.
    • ShareAlike — If you remix, transform, or build upon the material, you must distribute your contributions under the same license as the original.
    • No additional restrictions — You may not apply legal terms or technological measures that legally restrict others from doing anything the license permits.
  • Note: All documents in this project are for study and research purposes only, please do not use the documents in the project for illegal purposes, any negative impact caused by anyone has nothing to do with me.
  • Note: Downloading this repository will most likely result in your anti-virus software reporting viruses, please whitelist the project path. There are no malicious files in this project, however, due to the risk of local files containing attacks, it is not recommended to store these files on servers or other critical systems.

create by ffffffff0x

More Repositories

1

1earn

ffffffff0x 团队维护的安全知识框架,内容包括不仅限于 web安全、工控安全、取证、应急、蓝队设施部署、后渗透、Linux安全、各类靶机writup
C++
4,864
star
2

Digital-Privacy

Information Protection & OSINT resources | 一个关于数字隐私搜集、保护、清理集一体的方案,外加开源信息收集(OSINT)对抗
4,656
star
3

Dork-Admin

盘点近年来的数据泄露、供应链污染事件
1,738
star
4

f8x

红/蓝队环境自动化部署工具 | Red/Blue team environment automation deployment tool
Shell
1,343
star
5

BerylEnigma

ffffffff0x team toolset for penetration testing, cryptography research, CTF and daily use. | ffffffff0x 团队工具集,用来进行渗透测试,密码学研究,CTF和日常使用。
Java
664
star
6

Pentest101

一些关于渗透测试的Tips
508
star
7

name-fuzz

针对目标已知信息的字典生成工具
Python
186
star
8

ones

可用于多个网络资产测绘引擎 API 的命令行查询工具
Go
155
star
9

403-fuzz

针对 403 页面的 fuzz 脚本
Shell
126
star
10

CryptionTool

一个CTF+渗透测试工具框架,集成常见加解密,密码、编码转换,端口扫描,字符处理等功能
Java
73
star
11

JVWA

java 代码审计学习靶场
Java
72
star
12

burp_nu_te_gen

nuclei模版生成插件
Java
68
star
13

gendict

字典生成工具
Go
59
star
14

VIRUS-HUB

病毒库、样本中心
44
star
15

LOG-HUB

日志分析库,nuclei 的另一种用法
33
star
16

iprange

计算ip范围,支持 cidr,ip-range 格式的输入
Go
20
star
17

Linux101

每周(也许不)分享一些 Linux 小知识点
8
star
18

WaterMark

加水印小工具
Go
8
star
19

DomainSplit

Java
4
star
20

tasklist

win+linux 进程查询二合一
JavaScript
4
star
21

pathtrim

过滤path路径,提取第三方路径,删除mimetype内容,过滤静态后缀,删除空行+去重+排序
Go
2
star
22

seo-detect

简单、有效的seo关键词检测方案
2
star
23

pdf-export

PDF转图片小工具
Java
1
star